🇲🇽
octageeks.com
2026-09-03 04:06:04
(1 day ago)
Wordpress malicious attack:[octablocked]
Web App Attack
🇵🇱
lns.bz
2026-09-03 02:34:37
(1 day ago)
Too many 404 requests [BY]
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 01:26:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:26:09.502608 2026] [security2:error] [pid 2631:tid 2631] [client 34.62.234.51:45612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocketfuelpartners.com"] [uri "/.git/config"] [unique_id "apjMsVje7eR0g2uqGWlkSwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 01:03:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:03:45.925109 2026] [security2:error] [pid 30718:tid 30718] [client 34.62.234.51:47276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocketcityhotwheelers.com"] [uri "/.git/config"] [unique_id "apjHcSJQGOuy7eMzF9h-NgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 21:57:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 17:57:48.718206 2026] [security2:error] [pid 18280:tid 18288] [client 34.62.234.51:53664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rockabyecotons.com"] [uri "/.git/config"] [unique_id "apib3Ej8MevXSe6VfJO6hwAAAMM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
wteiken
2026-09-02 20:56:35
(1 day ago)
rocinante.teiken.net:443 34.62.234.51:51214 - - [02/Sep/2026:16:56:33 -0400] "GET /.git/config HTTP/ ...
show more
rocinante.teiken.net:443 34.62.234.51:51214 - - [02/Sep/2026:16:56:33 -0400] "GET /.git/config HTTP/1.1" 404 561 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
rocinante.teiken.net:443 34.62.234.51:51214 - - [02/Sep/2026:16:56:33 -0400] "GET /.env HTTP/1.1" 404 561 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
rocinante.teiken.net:443 34.62.234.51:51214 - - [02/Sep/2026:16:56:33 -0400] "GET /.env.local HTTP/1.1" 404 561 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
rocinante.teiken.net:443 34.62.234.51:51214 - - [02/Sep/2026:16:56:34 -0400] "GET /.env.production HTTP/1.1" 404 561 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
rocinante.teiken.net:443 34.62.234.51:51214 - - [02/Sep/2026:16:56:34 -0400] "GET /.env.staging HTTP/1.1" 404 561 "-" "M
...
show less
Web App Attack
🇧🇷
Halux
2026-09-02 19:41:15
(1 day ago)
34.62.234.51 Web Application Firewall multiple violations
Hacking
Web App Attack
Anonymous
2026-09-02 19:35:02
(1 day ago)
suspicious request in access.log
Web App Attack
🇦🇺
screwlooseit.com.au
2026-09-02 19:05:55
(1 day ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/51.234.62.34.bc.googleusercontent ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/51.234.62.34.bc.googleusercontent.com
show less
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-02 18:28:41
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-09-02 18:27:14
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.62.234.51 (BE/Belgium/51.234.62.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.62.234.51 (BE/Belgium/51.234.62.34.bc.googleusercontent.com)
show less
SQL Injection
🇳🇱
Mangelot Hosting
2026-09-02 17:37:31
(1 day ago)
(php_susp_dir) srv103 PHP Suspicious Directory 34.62.234.51 (BE/Belgium/51.234.62.34.bc.googleuserco ...
show more
(php_susp_dir) srv103 PHP Suspicious Directory 34.62.234.51 (BE/Belgium/51.234.62.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 17:12:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:12:23.125779 2026] [security2:error] [pid 32606:tid 32606] [client 34.62.234.51:51640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robtown.com"] [uri "/.git/config"] [unique_id "aphY90pUxhSBaLb2fq0RlgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 11:55:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.234.51 (51.234.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 07:55:55.328245 2026] [security2:error] [pid 1303:tid 1303] [client 34.62.234.51:47822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rpmevolution.com.jemsfood.com"] [uri "/.git/config"] [unique_id "apgOy8NAu0NlD-kkpK3KhAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
Ferron
2026-09-02 11:39:57
(1 day ago)
Ferron abuse ban: Custom abuse event: automated_scan
Port Scan